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IN THE CLAIMS 

This listing of claims will replace all prior versions, and listings, of claims in the 
application: 

Listing of Claims: 

1.-12. (Cancelled). 

13. (Currently amended) A method of providing security in a computer system 
having a client, an application server, an application component, a resource adapter and a 
principal mapping module, and a subject instance having the method comprising the steps of: 

invoking th e application compon e nt invok e s a connection request method by the 
application component on the resource adapter without passing in any security arguments; 

the resource adapter passes the connection request to the application server via a 
connection factory ; 

the application server is configured to use the principal mapping module s such that 
the principal mapping module takes the subject instance with the caller principal and returns 
the subject instance with a valid resource principal and password credential instance to the 
application server; and th e application s e rver e stablish e s 

establishing a managed connection between the application server and the enterprise 
information system using the valid resource principal and password credential instance 
generated by the principle mapping module . 

14. (Currently amended) A computer system for connecting a client process with 
an enterprise information system, the computer system comprising: 
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an application server, said application server including a connection manager, a 
security manager, and a security configuration; 

a resource adapter, said resource adapter having a connection factory and a managed 
connection factory; 

an application component, said application component in communication with said 
connection factory to pass information to said connection manager of the application server ; 

a java authentication and authorization service (JAAS) modul e, said JAAS s e rvic e 
modul e being in communication with said security service manager, said se rvic e JAAS 
modul e containing a sub- J ASS module; 

an enterprise information system, said enterprise information system in 
communication with said managed connection factory and said s e nde e JAAS module. 



Attorney Docket No. SUNMP147 



6 



